High severity8.1NVD Advisory· Published Aug 17, 2020· Updated Jun 17, 2026
CVE-2020-4686
CVE-2020-4686
Description
IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions they should not have access to. IBM X-Force ID: 186678.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
14- IBM/SAN Volume Controller and Storwize Familyv5Range: 8.3.1
cpe:2.3:a:ibm:spectrum_virtualize:8.3.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:spectrum_virtualize:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:spectrum_virtualize:8.3.1:*:*:*:public_cloud:*:*:*
- (no CPE)range: 8.3.1
- cpe:2.3:o:ibm:flashsystem_v5000_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:flashsystem_v7200_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:flashsystem_v9000_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:flashsystem_v9100_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:flashsystem_v9200_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:san_volume_controller_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:storwize_v5000_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:storwize_v5000e_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:storwize_v5100_firmware:8.3.1:*:*:*:*:*:*:*
- cpe:2.3:o:ibm:storwize_v7000_firmware:8.3.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/pages/node/6260199nvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/186678nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.